The Lead Product Security Engineer position is responsible for defining and evaluating solutions to improve overall cybersecurity risk posture of the firm, balancing commercial objectives with robust security controls, and protecting client assets and data.
Requirements
- 6 plus years' experience in secure architecture design, application security, and risk analysis techniques or related fields.
- Energetic, self-directed and self-motivated, able to build and sustain long-term relationships with colleagues.
- Must have experience managing multiple tasks and using sound judgment when managing risks, prioritizing and escalating.
- Must be able to work with deeply technical engineers, identify gaps that need addressing, and hold them to account.
- Security testing methodologies, tools and techniques - understanding of common application security vulnerabilities and controls to remediate.
- Expert knowledge of application security best practices including OWASP and CWE and cloud related concepts
- Hands-on software development and/or application Penetration Testing experience in complex environments an advantage
- Strong desire to learn and contribute solutions and ideas to a broad team.
Benefits
- Comprehensive health insurance
- Retirement plan
- Paid time off
- Professional development opportunities